Vulnerabilities > Oracle > Low

DATE CVE VULNERABILITY TITLE RISK
2007-01-17 CVE-2007-0288 Multiple vulnerability in Oracle Application Server 10.1.4.0
Unspecified vulnerability in Oracle Application Server 10.1.4.0 has unknown impact and attack vectors related to Oracle Internet Directory, aka OID01.
local
low complexity
oracle
1.7
2007-01-17 CVE-2007-0294 Multiple vulnerability in Oracle Enterprise Manager 10.2.0.1
Unspecified vulnerability in Oracle Enterprise Manager 10.2.0.1 has unknown impact and attack vectors related to Database Cloning & Data Guard Management, aka EM06.
local
low complexity
oracle
1.7
2007-01-17 CVE-2007-0296 Multiple vulnerability in Oracle January 2007 Security Update
Unspecified vulnerability in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.22.13, 8.47.11, and 8.48.06 has unknown impact and attack vectors in PeopleTools, aka PSE02.
local
low complexity
oracle
2.1
2006-10-18 CVE-2006-5363 Multiple vulnerability in Oracle Application Server and Collaboration Suite
Unspecified vulnerability in Oracle Single Sign-On component in Oracle Application Server 10.1.2.0.1 and Collaboration Suite 10.1.2 has unknown impact and remote attack vectors, aka Vuln# SSO02.
network
high complexity
oracle
2.6
2006-10-18 CVE-2006-5364 Multiple vulnerability in Oracle Application Server and Collaboration Suite
Unspecified vulnerability in Oracle Containers for J2EE component in Oracle Application Server 9.0.4.1 and 10.1.2.0.2, and Collaboration Suite 10.1.2, has unknown impact and remote authenticated attack vectors, aka Vuln# OC4J05.
network
high complexity
oracle
2.1
2006-08-18 CVE-2006-4226 MySQL before 4.1.21, 5.0 before 5.0.25, and 5.1 before 5.1.12, when run on case-sensitive filesystems, allows remote authenticated users to create or access a database when the database name differs only in case from a database for which they have permissions.
network
high complexity
mysql oracle
3.6
2006-08-09 CVE-2006-4031 MySQL 4.1 before 4.1.21 and 5.0 before 5.0.24 allows a local user to access a table through a previously created MERGE table, even after the user's privileges are revoked for the original table, which might violate intended security policy.
local
low complexity
mysql oracle
2.1
2006-07-21 CVE-2006-3707 Multiple vulnerability in Oracle July 2006 Security Update
Unspecified vulnerability in OC4J for Oracle Application Server 9.0.2.3 and 9.0.3.1 has unknown impact and attack vectors, aka Oracle Vuln# AS02.
network
high complexity
oracle
3.6
2006-05-22 CVE-2006-2505 SQL Injection vulnerability in Oracle Database Server Release2
Oracle Database Server 10g Release 2 allows local users to execute arbitrary SQL queries via a reference to a malicious package in the TYPE_NAME argument in the (1) GET_DOMAIN_INDEX_TABLES or (2) GET_V2_DOMAIN_INDEX_TABLES function in the DBMS_EXPORT_EXTENSION package.
local
low complexity
oracle
3.6
2006-04-11 CVE-2006-1705 Unspecified vulnerability in Oracle Oracle10G and Oracle9I
Oracle Database 9.2.0.0 to 10.2.0.3 allows local users with "SELECT" privileges for a base table to insert, update, or delete data by creating a crafted view then performing the operations on that view.
local
low complexity
oracle
2.1